Anthropic warns infostealer malware is hijacking Claude sessions to drain usage
Anthropic alerts users that malware is stealing Claude login sessions, leading to unauthorized usage and account access.
Intelligence analysis by Qwen 2.5 (3B)

Anthropic warns of malware hijacking Claude sessions, leading to unauthorized usage and account access. Users are advised to change credentials and remove malware.
Some bad guys used sneaky software to steal passwords from people's computers. This software then used those passwords to pretend to be the person and use up Claude's time. Anthropic, the company that makes Claude, is helping people fix this by stopping the bad software and giving them their time back.
Analysis
{"heading_1":"Malware Infection and Usage Drain","subheading_1":"Infostealer Malware Steals Claude Sessions","paragraph_1":"Anthropic has identified multiple malware strains, including Vidar, LummaC2, StealC, RedLine, and Acreed on Windows, and Atomic Stealer (AMOS) on Macs, which were used to compromise users' systems.","subheading_2":"Multiple Malware Identified"}
Key points
- Infostealer malware was used to steal Claude login sessions
- Users are advised to change their passwords and remove the malware
- Multiple malware strains were identified and are being investigated
By removing the malware and changing passwords, users can prevent this from happening again in the future.
If the malware is still on the computer, the bad guys could try to steal more passwords and use up more time on Claude.



